设为首页加入收藏
  • 首页
  • Start up
  • 当前位置:首页 >Start up >【】

    【】

    发布时间:2025-09-13 05:43:21 来源:都市天下脉观察 作者:Start up

    Latest

    AI

    Amazon

    Apps

    Biotech & Health

    Climate

    Cloud Computing

    Commerce

    Crypto

    Enterprise

    EVs

    Fintech

    Fundraising

    Gadgets

    Gaming

    Google

    Government & Policy

    Hardware

    Instagram

    Layoffs

    Media & Entertainment

    Meta

    Microsoft

    Privacy

    Robotics

    Security

    Social

    Space

    Startups

    TikTok

    Transportation

    Venture

    More from TechCrunch

    Staff

    Events

    Startup Battlefield

    StrictlyVC

    Newsletters

    Podcasts

    Videos

    Partner Content

    TechCrunch Brand Studio

    Crunchboard

    Contact Us

    Containers in the cloud; kubernetes
    Image Credits:SerrNovik (opens in a new window) / Getty Images
    Security

    KSOC says it’s tackling cloud-native security in a way that is Kubernetes-first

    Annie Njanja 4:17 AM PDT · September 28, 2023

    The take-up of Kubernetes, a tool for managing containerized workloads, is only expected to increase as demand for cloud-native architectures and containerization continues. In terms of security, this can mean a boon or a major blind spot for them, according to Kubernetes Security Operation Center (KSOC), a Bay Area startup — a boon, in that using Kubernetes can limit an attacker’s blast radius, and a major blind spot because a vulnerable web app in an exposed Kubernetes cluster can give attackers unlimited access and a chance to take complete control.

    KSOC co-founder and CEO Brooke Motta says this is why the startup is tackling cloud-native security in a way that is Kubernetes-first. The company, which is part of TechCrunch Disrupt’s 2023 Startup Battlefield 200, does this through automated risk triage that looks for potential security issues within a company’s infrastructure. Among other things, the company’s system analyzes a business’s role-based access control (RBAC) settings, misconfigurations, runtime events, image vulnerabilities, network exposure and public cloud context to identify high-priority risks.

    “A threat vector is a way to reduce the noise of security findings from any one part of Kubernetes to identify high-priority risk. We combine the relationships between these elements (different Kubernetes risks) to see where they exist together, which immediately increases the risk factor and shows top priority,” said Motta. Before co-founding KSOC, she was the chief revenue officer at cybersecurity platform Bugcrowd and next-gen web application firewall service Wallarm.

    Security concerns continue to delay or slow down the implementation of cloud-native technologies like Kubernetes, according to the latest edition of Red Hat’s State of Kubernetes Security report. The report says 67% of the companies interviewed reported delaying or slowing down deployments due to security concerns, as 37% experienced revenue or customer loss due to a breach. KSOC says it is eliminating this headache for companies.

    KSOC, which raised $6 million in seed funding last year backed by 406 Ventures, Forgepoint Capital, Vertex Ventures US and Gula Tech Adventures, also polls for Kubernetes misconfigurations in real time, a major improvement over the common practice of doing checks in intervals of hours or even days. Misconfigurations are the top security concern for companies adopting Kubernetes, and come with serious consequences such as potential exposure to ransomware and data loss. KSOC’s platform is also able to show who has access to what RBAC (role-based access control) permissions.

    “We connect runtime events to threat vectors so you can see not just your top risk, but where those risks are actually being exploited today, in real time. While others can show runtime events we connect them to the Kubernetes context, so you can detect attacks targeting Kubernetes specifically,” said Motta, who co-founded the startup with Jimmy Mesta (CTO), who is also a veteran security engineer.

    She added that KSOC gives teams great visibility of their environment. “Every security team is dealing with staff shortages, especially around Kubernetes and cloud native, so this gives them a practical option for managing Kubernetes security with the team they have,” she said.

    Techcrunch event

    Join 10k+ tech and VC leaders for growth and connections at Disrupt 2025

    Netflix, Box, a16z, ElevenLabs, Wayve, Sequoia Capital, Elad Gil — just some of the 250+ heavy hitters leading 200+ sessions designed to deliver the insights that fuel startup growth and sharpen your edge. Don’t miss the 20th anniversary of TechCrunch, and a chance to learn from the top voices in tech. Grab your ticket before Sept 26 to save up to $668.

    Join 10k+ tech and VC leaders for growth and connections at Disrupt 2025

    Netflix, Box, a16z, ElevenLabs, Wayve, Sequoia Capital, Elad Gil — just some of the 250+ heavy hitters leading 200+ sessions designed to deliver the insights that fuel startup growth and sharpen your edge. Don’t miss the 20th anniversary of TechCrunch, and a chance to learn from the top voices in tech. Grab your ticket before Sept 26 to save up to $668.

    San Francisco | October 27-29, 2025 REGISTER NOW

    Amazon Detective now supports container security in Amazon EKS

    • 上一篇:54gene valuation slashed by over $100M amid job cuts and CEO exit
    • 下一篇:TechCrunch Disrupt Battlefield alum Perygee helps secure building operations

      相关文章

      • Indian edtech Unacademy cuts 10% of jobs
      • Roots introduces a screen time app for tracking 'digital dopamine'
      • Google's new startup program focuses on bringing AI to public infrastructure
      • Don't miss StrictlyVC in DC next week
      • 5 promising fusion startups that aren’t unicorns — yet
      • Only hours left to apply to Startup Battlefield 200 at Disrupt
      • Taloflow puts AI to work on software vendor selection to reduce costs and save time
      • Novel battery manufacturer EnerVenue is raising $515M, per filing
      • TechCrunch+ roundup: Attention metrics, growth through retention, cold
      • Indian EV startup Zypp Electric secures backing to fund expansion to Southeast Asia

        随便看看

      • Truepill, a digital health unicorn, conducts fourth round of layoffs in 2022
      • Directo turns a TikTok travel hack into a deal
      • Deel acquires Hofy to build its own IT device management service
      • Directo turns a TikTok travel hack into a deal
      • Receptions, parties and more at TechCrunch Disrupt
      • Eyebot raised $6M for AI
      • Only hours left to apply to Startup Battlefield 200 at Disrupt
      • India scraps 'angel tax' in boost for startups
      • How Zette plans to let people access paywalled news with a single monthly subscription
      • Qargo raises $14M to digitize and decarbonize the trucking industry
      • Copyright © 2025 Powered by 【】,都市天下脉观察   辽ICP备198741324484号sitemap